2026 CVE Vulnerabilities

56,974 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-56743MEDIUM5.4Cilium is a networking, observability, and security solution. From 1.19.0 to 1.19.4, standard Kubernetes NetworkPolicy s...
CVE-2026-56742HIGH8.9Cilium is a networking, observability, and security solution. Prior to 1.17.17, 1.18.11, and 1.19.5, Cilium clusters usi...
CVE-2026-52870HIGH7.6The MCP Python SDK, called mcp on PyPI, is a Python implementation of the Model Context Protocol (MCP). From 1.23.0 unti...
CVE-2026-52869HIGH7.1The MCP Python SDK, called mcp on PyPI, is a Python implementation of the Model Context Protocol (MCP). Prior to 1.27.2,...
CVE-2026-50144HIGH7.1ncnn is a high-performance neural network inference framework optimized for the mobile platform. In commit e54f7b1f88434...
CVE-2026-50124HIGH7.1DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase can be exploited by uploadin...
CVE-2026-50030HIGH7.1DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase SQL preview exposes DatasetD...
CVE-2026-49867MEDIUM6.3DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase template static resources le...
CVE-2026-49445HIGH8.8Cilium is a networking, observability, and security solution. Prior to 1.17.14, 1.18.8, and 1.19.2, when Cilium L7 funct...
CVE-2026-46684CRITICAL9.5DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase enterprise token handling ca...
CVE-2026-45738HIGH8.7Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to 3.2.12, 3.3.10, and 3.4.2, Argo CD us...
CVE-2026-45737MEDIUM6.5Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. From 3.2.0 until 3.2.12, 3.3.10, and 3.4.2, Ar...
CVE-2026-45535HIGH8.7DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase SQL-type datasets store atta...
CVE-2026-45534CRITICAL9DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase Redshift datasource connecti...
CVE-2026-45533HIGH8.3DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase export-center deletion can a...
CVE-2026-45419HIGH8.5DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase template saves call Template...
CVE-2026-45417HIGH8.7DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase datasource connection status...
CVE-2026-45320HIGH8.7DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase dashboard SQL variables such...
CVE-2026-40958LOW3.7CVE-2026-40958 is a input validation error in Secure Access clients prior to 14.55. Attackers with intimate knowledge of...
CVE-2026-40957HIGH7.5o   CVE-2026-40957 is a frameable content vulnerability in the Secure Access server login page prior to 14.55. Attackers...
CVE-2026-40956LOW3.7CVE-2026-40956 is a memory disclosure vulnerability in Secure Access client versions prior to 14.55. Attackers with inti...
CVE-2026-40955LOW3.7CVE-2026-40955 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 1...
CVE-2026-40954LOW3.7CVE-2026-40954 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 1...
CVE-2026-40953MEDIUM4.4CVE-2026-40953 is a heap overflow in the certificate parsing function of Secure Access clients prior to 14.55. Attackers...
CVE-2026-40952HIGH7.8CVE-2026-40952 is a privilege misconfiguration in the Secure Access installer for the Windows client and server prior to...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now